White Paper
MongoDB: Capabilities for Use in a Zero Trust Environment
This white paper explains how MongoDB can operate as part of a zero trust security architecture based on the principle that no user, device, connection, or location should be inherently trusted. MongoDB supports security by default, controlled network connectivity, strong authentication, fine-grained authorization, auditing, encryption, and data-access restrictions. Dedicated Atlas clusters begin without public internet connectivity and use isolated virtual private clouds and configurable IP access lists. Authentication options include SCRAM, LDAP, Kerberos, X.509 certificates, and TLS, while role-based access controls limit each user to specifically authorized actions. Temporary access and detailed authentication logs improve accountability. The paper concludes that these controls help de
